Back

CRITICAL

numpy: crafted serialized object passed in numpy.load() in pickle python module allows arbitrary code execution

Published Jan 16, 2019

Description

An issue was discovered in NumPy before 1.16.3. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, as demonstrated by a numpy.load call. NOTE: third parties dispute this issue because it is a behavior that might have legitimate applications in (for example) loading serialized Python object arrays from trusted and authenticated sources.

Affected products

Remediation

Red Hat statement

Red Hat Enterprise Virtualization Management Appliance includes the vulnerable version of numpy, however it is not used and this vulnerability is not exposed. Red Hat OpenStack Platform includes a vulnerable version of numpy, however it is not used in a vulnerable manner.

References (21)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner mitre
Published Jan 16, 2019
Updated Jul 21, 2025
Reserved Jan 15, 2019

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Jan 16, 2019
Bugzilla 1667950

ENISA EUVD

Assigner mitre
Published Jan 16, 2019
Updated Jul 21, 2025